WINDOWS 3D.SCR – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

WINDOWS 3D.SCR – Trojan Downloader removal

File MD5 Virus Alias
WINDOWS 3D.SCR d3fba54d7d5419d06a58542c570db754 Trojan Downloader
WINDOWS 3D.SCR d3fba54d7d5419d06a58542c570db754 Trojan SuspiciousFile
WINDOWS 3D.SCR d3fba54d7d5419d06a58542c570db754 Trojan Generic
WINDOWS 3D.SCR d3fba54d7d5419d06a58542c570db754 Trojan Hllw
WINDOWS 3D.SCR d3fba54d7d5419d06a58542c570db754 Trojan Agent

WINDOWS 3D.SCR size: 78335 bytes
WINDOWS 3D.SCR hash: D3FBA54D7D5419D06A58542C570DB754

Created files:

C:\windows\system32\CommandPrompt.Sysm
C:\windows\system32\Desktop.sysm
C:\windows\system32\Windows 3D.scr
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\csrss.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\csrss.exe?
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\lsass.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\lsass.exe?
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\msvbvm60.dll
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\Paraysutki_VM_Community
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\services.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\smss.exe
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\smss.exe?
C:\windows\system32\~A~m~B~u~R~a~D~u~L~\winlogon.exe
%AppData%\Microsoft\2068
%AppData%\Microsoft\dsnw.exe

Detected by UnHackMe:

WINDOWS 3D.SCR
Default location: %SYSDIR%\WINDOWS 3D.SCR

Dropper information:
MD5: 0cca30c5e983278fac06583ec039cdf3
File size: 130050 bytes

Leave a Reply